CVE-2014-5424

Rockwell Automation Connected Components Workbench < 6.01.00 - Remote Code Execution via ActiveX Control

Title source: llm
STIX 2.1

Description

Rockwell Automation Connected Components Workbench (CCW) before 7.00.00 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an invalid property value to an ActiveX control that was built with an outdated compiler.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-14-294-01

Scores

EPSS 0.0039
EPSS Percentile 60.4%

Details

CWE
CWE-264
Status published
Products (1)
rockwellautomation/connected_components_workbench < 6.01.00
Published Nov 14, 2014
Tracked Since Feb 18, 2026